Back to skill

Security audit

Error Message Improver

Security checks across malware telemetry and agentic risk

Overview

This is a documentation-only skill for improving error messages, with no hidden execution or data access, though its activation wording is broader than ideal.

Install only if you are comfortable with the skill being invoked for some broad debugging, support, or productivity requests. The main practical risk is accidental routing to this error-message workflow, not local code execution or data access.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (11)

Vague Triggers

Medium
Confidence
88% confidence
Finding
The trigger sentence is phrased as a natural-language request that overlaps with ordinary user wording, which can cause the skill to activate when a user is merely discussing error messages rather than explicitly invoking the skill. In agent ecosystems, overly broad triggers increase the chance of unintended execution, context hijacking, or routing to the wrong workflow.

Vague Triggers

Medium
Confidence
91% confidence
Finding
The invocation guidance is ambiguous because it lists keywords and broad trigger sentences without defining mandatory activation boundaries. This makes accidental invocation more likely, especially in support or debugging conversations where these terms are common, which can lead to unintended tool use or workflow injection in a multi-skill environment.

Vague Triggers

Medium
Confidence
90% confidence
Finding
The trigger phrases are broad enough to match many ordinary support or productivity requests, which can cause this skill to activate outside its intended scope. Over-broad activation increases the chance of unintended prompt injection exposure, incorrect workflow takeover, or user confusion when another skill or the base assistant would have been more appropriate.

Vague Triggers

Medium
Confidence
95% confidence
Finding
The skill description is broad enough to match many ordinary requests about productivity, debugging, support, and implementation help, which increases the chance of unintentional invocation. Over-broad routing can cause the agent to apply this skill outside its intended scope, creating prompt-surface expansion and reducing predictability of behavior.

Vague Triggers

Medium
Confidence
97% confidence
Finding
The trigger keywords are highly generic terms that commonly appear in normal user conversations, so they do not safely constrain when the skill should activate. This makes accidental or overly frequent invocation likely, which can interfere with skill selection and expose the system to unintended instruction influence from a broad class of prompts.

Vague Triggers

Medium
Confidence
90% confidence
Finding
The trigger keywords are very broad and common in normal conversations, which increases the chance this skill is invoked when the user did not specifically intend to use it. Over-broad activation can cause prompt routing mistakes, inject irrelevant instructions into unrelated tasks, and expand the attack surface for any downstream skill behavior.

Vague Triggers

Medium
Confidence
88% confidence
Finding
The example trigger phrases are phrased as broad everyday requests and do not enforce strong skill specificity, which can train or encourage activation on weak matches. This can cause accidental invocation in unrelated contexts, leading to incorrect task handling or unintended exposure of the skill's instructions during normal user interactions.

Vague Triggers

Medium
Confidence
90% confidence
Finding
The skill enables implicit invocation without any visible activation constraints, examples, or narrow routing signals. This increases the chance that ordinary user conversations about debugging, support, or productivity could automatically trigger the skill unexpectedly, causing unplanned prompt injection exposure, user confusion, or execution of the wrong workflow.

Vague Triggers

Medium
Confidence
87% confidence
Finding
The default prompt uses broad, everyday language around work productivity, debugging, support, and implementation help, which overlaps heavily with normal conversation. In combination with implicit invocation, this broad phrasing makes accidental activation more likely and widens the attack surface for unintended skill routing.

Vague Triggers

High
Confidence
95% confidence
Finding
The trigger sentence is extremely broad and maps to common help-seeking language, which can cause the skill to activate in unrelated conversations. Unintended invocation can override user intent, inject irrelevant workflow steps, and increase the chance of prompt-routing abuse or unwanted content shaping.

Vague Triggers

Medium
Confidence
90% confidence
Finding
The activation guidance provides positive triggers but does not define scope boundaries or exclusion cases, making routing ambiguous. In agent systems, ambiguous routing can lead to accidental skill execution on benign or unrelated prompts, which weakens control over tool selection and response behavior.

VirusTotal

62/62 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.